On February 7, Adobe issued a security bulletin warning of zero-day attacks that leverage two Flash vulnerabilities. One (CVE-2013-0634) is related to ActionScript regular expression handling. (Some sources refer to this vulnerability as CVE-2013-0633. We are waiting for Adobe to confirm the proper CVE ID.) McAfee Labs rapidly responded to the threat. While digging in Read more…
Tags: ActionScript, ASLR, CVE-2013-0633, CVE-2013-0634, DEP, exploitation, Flash Player, Zero-Day Attack
On October 12, McAfee Labs learned of proof-of-concept code exploiting a newly patched Flash Player vulnerability. Adobe had patched this vulnerability in its latest security update on October 8. Our research team rapidly responded to this threat with an in-depth analysis of the root cause and the degree of exploitability. This specific vulnerability occurred due Read more…
Tags: 1-day, ActionScript, Adobe, exploitation, Flash Player, vulnerability, Zero-Day
Posts tagged under Flash Player